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WHAT IS CLAIMED IS: 

1 . A method of controlling access to the Internet, the method 
comprising: 

sending identification information for a user from a client 
computer to an Internet access control web server; 

receiving user web access settings from the Internet access 
control web server at the client computer, wherein the user web access 
settings comprise a level of access allowed for the user in at least one 
category of content; 

intercepting an Internet access request initiated by an 
application used at the client computer by the user; 

extracting a Uniform Resource Locator (URL) from the Internet 
access request at the client computer; 

sending the URL to the Internet access control web server from 
the client computer; 

receiving URL ratings from the Internet access control web 
server at the client computer, wherein the URL ratings comprise a rating level 
in at least one category of content; 

comparing the URL ratings to the user web access settings at 
the client computer; and 

determining if access to the URL should be granted. 

2. The method of claim 1 , further comprising sending the Internet 
access request to a client computer networking layer, if access is granted. 

3. The method of claim 2, further comprising editing the Internet 
access request to remove the URL and to include a user appropriate URL and 
sending the edited Internet access request to the client computer networking 
layer, if access is not granted. 
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4. The method of claim 3, further comprising: 
storing the URL in a cache at the client computer; 
storing the URL in the cache as disallowed, if access is not 

granted; 

storing the URL in the cache as allowed, if access is granted; 

intercepting an additional Internet access request initiated by an 
application used at the client computer by the user; 

extracting an additional URL from the additional Internet access 
request at the client computer; 

comparing the additional URL to each URL in the cache until the 
additional URL matches a URL stored in the cache or until the additional URL 
has been compared to each URL in the cache; 

sending the Internet access request to the client computer 
networking layer, if the additional URL matches a URL stored in the cache 
that was stored as allowed; 

editing the additional Internet access request to remove the 
additional URL and to include the user appropriate URL, if the additional URL 
matches a URL stored in the cache that was stored as disallowed; 

sending the edited additional Internet access request to the 
client computer networking layer, if the additional URL matches a URL stored 
in the cache that was stored as disallowed; and 

clearing the cache when the user logs out from the Internet 
access control system at the client computer. 

5. The method of claim 1 , further comprising: 

receiving a user web access override list from the Internet 
access control web server at the client computer, wherein the user web 
access override list comprises URLs to which the user is allowed access and 
URLS to which the user is not allowed access; 
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comparing the URL to the user web access override list at the 
client computer; 

determining if access to the URL should be granted at the client 

computer; 

sending the Internet access request to a client computer 
networking layer, if access is granted; 

editing the Internet access request to remove the URL and to 
include a user appropriate URL, if access is not granted; and 

sending the edited Internet access request to the client 
computer networking layer, if access is not granted. 

6. The method of claim 6, further comprising: 

storing the URL in a cache at the client computer; 

storing the URL in the cache as disallowed, if access is not 

granted; 

storing the URL in the cache as allowed, if access is granted; 

intercepting an additional Internet access request initiated by an 
application used at the client computer by the user; 

extracting an additional URL from the additional Internet access 
request at the client computer; 

comparing the additional URL to each URL in the cache until the 
additional URL matches a URL stored in the cache or until the additional URL 
has been compared to each URL in the cache; 

sending the Internet access request to the client computer 
networking layer, if the additional URL matches a URL stored in the cache 
that was stored as allowed; 

editing the additional Internet access request to remove the 
additional URL and to include the user appropriate URL, if the additional URL 
matches a URL stored in the cache that was stored as disallowed; 
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sending the edited additional Internet access request to the 
client computer networking layer, if the additional URL matches a URL stored 
in the cache that was stored as disallowed; and 

clearing the cache when the user logs out from the Internet 
access control system at the client computer. 

7. The method of claim 1 , wherein the user web access settings 
and the URL ratings further comprise context settings for at least one 
category of content. 

8. The method of claim 7, wherein the context settings comprise a 
setting that the URL contains material of artistic value. 

9. The method of claim 7, wherein the context settings comprise a 
setting that the URL contains material of educational value. 

10. The method of claim 7, wherein the context settings comprise a 
setting that the URL contains material of medical value. 

1 1 . The method of claim 7, wherein the category of content 
comprises a language category. 

12. The method of claim 1 1 , wherein the language category of 
content comprises a plurality of selectable language content levels and a 
selectable context setting to optionally override the selected language content 
level. 

1 3. The method of claim 7, wherein the category of content 
comprises a nudity and sex category. 

14. The method of claim 13, wherein the nudity and sex category of 
content comprises a plurality of selectable nudity and sex content levels and a 
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selectable context setting to optionally override the selected nudity and sex 
content level. 

1 5. The method of claim 7, wherein the category of content 
comprises a violence category. 

16. The method of claim 15, wherein the violence category of 
content comprises a plurality of selectable violence content levels and a 
selectable context setting to optionally override the selected violence content 
level. 

17. The method of claim 15, wherein the violence category 
comprises a human being violence category. 

18. The method of claim 15, wherein the violence category 
comprises an animal violence category. 

19. The method of claim 15, wherein the violence category 
comprises a fantasy character violence category. 

20. The method of claim 1 , wherein the user web access settings 
and the URL ratings further comprise at least one restrictive category of 
content that may be either allowed or disallowed. 

21 . The method of claim 20, wherein the at least one restrictive 
category of content is auctions, drug advocacy, entertainment, illegal 
activities, gambling, games, Gay and Lesbian information, discriminatory 
speech, information concerning higher education, intimate apparel, 
information concerning mysticism, news, personal advertisements, personal 
websites, politics, religion, sex education, shopping, sports, information 
concerning suicide, weapon promotion, material that may disturb young 
children, material that may set a bad example for young children, adult sexual 
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material, job search/careers, travel/tourism and vacation, motor vehicles, or 
stocks and investing. 

22. A method of controlling access to the Internet, the method 
comprising: 

receiving identification information for a user from a client 
computer at a Internet access control web server; 

sending user web access settings from the Internet access 
control web server to the client computer, wherein the user web access 
settings comprise a level of access allowed for the user in at least one 
category of content; 

receiving a Uniform Resource Locator (URL) from the client 
computer at the Internet access control web server, wherein the URL was 
extracted from an Internet access request at the client computer; 

sending URL ratings from the Internet access control web server 
to the client computer, wherein the URL ratings comprise a rating level in at 
least one category of content that is capable of being compared to the user 
web access settings. 

23. The method of claim 22, further comprising: 

sending a user web access override list from the Internet access 
control web server to the client computer, wherein the user web access 
override list comprises URLs to which the user is allowed access and URLS 
to which the user is not allowed access. 

24. The method of claim 22, wherein the user web access settings 
and the URL ratings further comprise context settings for at least one 
category of content. 

25. The method of claim 24, wherein the context settings comprise a 
setting that the URL contains material of artistic value. 
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26. The method of claim 24, wherein the context settings comprise a 
setting that the URL contains material of educational value. 

27. The method of claim 24, wherein the context settings comprise a 
setting that the URL contains material of medical value. 

28. The method of claim 24, wherein the category of content 
comprises a language category. 

29. The method of claim 28, wherein the language category of 
content comprises a plurality of selectable language content levels and a 
selectable context setting to optionally override the selected language content 
level. 

30. The method of claim 24, wherein the category of content 
comprises a nudity and sex category. 

31 . The method of claim 30, wherein the nudity and sex category of 
content comprises a plurality of selectable nudity and sex content levels and a 
selectable context setting to optionally override the selected nudity and sex 
content level. 

32. The method of claim 24, wherein the category of content 
comprises a violence category. 

33. The method of claim 32, wherein the violence category of 
content comprises a plurality of selectable violence content levels and a 
selectable context setting to optionally override the selected violence content 
level. 

34. The method of claim 32, wherein the violence category 
comprises a human being violence category. 
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35. The method of claim 32, wherein the violence category 
comprises an animal violence category. 

36. The method of claim 32, wherein the violence category 
comprises a fantasy character violence category. 

37. The method of claim 22, wherein the user web access settings 
and the URL ratings further comprise at least one restrictive category of 
content that may be either allowed or disallowed. 

38. The method of claim 37, wherein the at least one restrictive 
category of content is auctions, drug advocacy, entertainment, illegal 
activities, gambling, games, Gay and Lesbian information, discriminatory 
speech, information concerning higher education, intimate apparel, 
information concerning mysticism, news, personal advertisements, personal 
websites, politics, religion, sex education, shopping, sports, information 
concerning suicide, weapon promotion, material that may disturb young 
children, material that may set a bad example for young children, adult sexual 
material, job search/careers, travel/tourism and vacation, motor vehicles, or 
stocks and investing. 

39. A system for controlling access to the Internet, the system 
comprising: 

a client comprising: 

a user authentication interface that prompts a user for 
identification information; 

a communication manager configured to: 

send the identification information to an Internet 
access control web server, 

receive user web access settings from the Internet 
access control web server, wherein the user web access 
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settings comprise a level of access allowed for the user in at 
least one category of content, 

intercept an Internet access request initiated by an 
application used at the client computer by the user; 

send a Uniform Resource Locator (URL) extracted 
from the Internet access request to the Internet access control 
web server, and 

receive URL ratings from the Internet access 
control web server, wherein the URL ratings comprise a rating 
level in at least one category of content; and 
a logic module configured to: 

compare the URL ratings to the user web access 

settings, and 

determine if access to the URL should be granted; 

and 

the Internet access control web server comprising: 
a login manager configured to: 

receive the identification information; 

verify the identification information, 

determine the user web access settings for the 
user that correspond to the identification information, and 

send the user web access settings to the client; 

and 

a lookup manager configured to: 
receive the URL, 

determine the URL ratings that correspond to the 

URL, and 

send the URL ratings to the client. 
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40. The system of claim 39, wherein the communication manager is 
further configured to send the Internet access request to a client computer 
networking layer, if access is granted. 

41 . The system of claim 40, wherein the communication manager is 
further configured to: 

edit the Internet access request to remove the URL and to 
include a user appropriate URL, if access is not granted; and 

send the edited Internet access request to a client computer 
networking layer, if access is not granted. 

42. The system of claim 41 , wherein the client further comprises a 
cache configured to: 

store the URL; 

store the URL as disallowed, if access is not granted; and 
store the URL as allowed, if access is granted. 

43. The system of claim 42, wherein 

the communication manager is further configured to: 

intercept an additional Internet access request initiated by 
an application used at the client computer by the user; 

send the additional Internet access request to the client 
computer networking layer, if an additional URL matches a URL stored 
in the cache as allowed; and 

send an edited additional Internet access request to the 
client computer networking layer, if the additional URL matches a URL 
stored in the cache as disallowed; and 

the logic module is further configured to: 

extract the additional URL from the additional Internet 
access request at the client computer; 
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compare the additional URL to each URL in the cache 
until the additional URL matches a URL stored in the cache or until the 
additional URL has been compared to each URL in the cache; 

edit the additional Internet access request to remove the 
additional URL and to include the user appropriate URL, if the 
additional URL matches a URL stored in the cache as disallowed; and 

clear the cache when the user logs out from the system 
at the client computer. 

44. The system of claim 39, wherein the communication manager is 
further configured to receive a user web access override list from the Internet 
access control web server, wherein the user web access override list 
comprises URLs to which the user is allowed access and URLs to which the 
user is not allowed access. 

45. The system of claim 44, wherein 

the logic module is further configured to: 

compare the URL to the user web access override list; 

determine if access to the URL should be granted; 

edit the Internet access request to remove the URL and 
to include a user appropriate URL, if access is not granted; and 
the communication manager is further configured to: 

send the Internet access request to a client computer 
networking layer, if access is granted; and 

send the edited Internet access request to the client 
computer networking layer, if access is not granted. 

46. The system of claim 45, wherein the client further comprises a 
cache configured to: 

store the URL; 

store the URL as disallowed, if access is not granted; and 
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store the URL as allowed, if access is granted. 

47. The system of claim 46, wherein 

the communication manager is further configured to: 

intercept an additional Internet access request initiated by 
an application used at the client computer by the user; 

send the additional Internet access request to the client 
computer networking layer, if an additional URL matches a URL stored 
in the cache as allowed; and 

send an edited additional Internet access request to the 
client computer networking layer, if the additional URL matches a URL 
stored in the cache as disallowed; and 

the logic module is further configured to: 

extract the additional URL from the additional Internet 
access request at the client computer; 

compare the additional URL to each URL in the cache 
until the additional URL matches a URL stored in the cache or until the 
additional URL has been compared to each URL in the cache; 

edit the additional Internet access request to remove the 
additional URL and to include the user appropriate URL, if the 
additional URL matches a URL stored in the cache as disallowed; and 

clear the cache when the user logs out from the system 
at the client computer. 

48. The system of claim 39, wherein the user web access settings 
and the URL ratings further comprise context settings for at least one 
category of content. 

49. The system of claim 48, wherein the context settings comprise a 
setting that the URL contains material of artistic value. 
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50. The system of claim 48, wherein the context settings comprise a 
setting that the URL contains material of educational value. 

51 . The system of claim 48, wherein the context settings comprise a 
setting that the URL contains material of medical value. 

52. The system of claim 48, wherein the category of content 
comprises a language category. 

53. The system of claim 52, wherein the language category of 
content comprises a plurality of selectable language content levels and a 
selectable context setting to optionally override the selected language content 
level. 

54. The system of claim 48, wherein the category of content 
comprises a nudity and sex category. 

55. The system of claim 54, wherein the nudity and sex category of 
content comprises a plurality of selectable nudity and sex content levels and a 
selectable context setting to optionally override the selected nudity and sex 
content level. 

56. The system of claim 48, wherein the category of content 
comprises a violence category. 

57. The system of claim 56, wherein the violence category of 
content comprises a plurality of selectable violence content levels and a 
selectable context setting to optionally override the selected violence content 
level. 

58. The system of claim 56, wherein the violence category 
comprises a human being violence category. 
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59. The system of claim 56, wherein the violence category 
comprises an animal violence category. 

60. The system of claim 56, wherein the violence category 
comprises a fantasy character violence category. 

61 . The system of claim 39, wherein the user web access settings 
and the URL ratings further comprise at least one restrictive category of 
content that may be either allowed or disallowed. 

62. The system of claim 61 , wherein the at least one restrictive 
category of content is auctions, drug advocacy, entertainment, illegal 
activities, gambling, games, Gay and Lesbian information, discriminatory 
speech, information concerning higher education, intimate apparel, 
information concerning mysticism, news, personal advertisements, personal 
websites, politics, religion, sex education, shopping, sports, information 
concerning suicide, weapon promotion, material that may disturb young 
children, material that may set a bad example for young children, adult sexual 
material, job search/careers, travel/tourism and vacation, motor vehicles, or 
stocks and investing. 

63. The system of claim 39, wherein the Internet access control web 
server further comprises an account manager configured to add a user 
account, to edit the user account, and to delete the user account. 

64. The system of claim 63, wherein the user account comprises 
identification information. 

65. The system of claim 64, wherein the user account further 
comprises web access settings comprising a level of access allowed for the 
user account in at least one category of content. 



-40- 



Atty. Dkt. No.: 038069:0102 



66. The system of claim 65, wherein the user account further 
comprises context settings for at least one category of content comprising 
overrides to the level of access allowed for the user account in the category of 
content. 

67. The system of claim 66, wherein the user account further 
comprises at least one restrictive category of content that may be either 
allowed or disallowed for the user account. 

68. The system of claim 67, wherein the user account further 
comprises a user web access override list, wherein the user web access 
override list comprises URLs to which the user account is allowed access and 
URLs to which the user account is not allowed access. 

69. The system of claim 68, wherein the user account further 
comprises an appropriate URL for including in an Internet access request. 

70. A computer program product for controlling access to the 
Internet comprising: 

computer code configured to: 

prompt a user for identification information; 

send the identification information to an Internet access 
control web server, 

receive user web access settings from the Internet 
access control web server, wherein the user web access settings 
comprise a level of access allowed for the user in at least one category 
of content, 

intercept an Internet access request initiated by an 
application used at the client computer by the user; 

send a Uniform Resource Locator (URL) extracted from 
the Internet access request to the Internet access control web server, 
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receive URL ratings from the Internet access control web 
server, wherein the URL ratings comprise a rating level in at least one 
category of content; 

compare the URL ratings to the user web access 

settings, and 

determine if access to the URL should be granted. 

71 . The computer program product of claim 70, wherein the 
computer code is further configured to send the Internet access request to a 
client computer networking layer, if access is granted. 

72. The computer program product of claim 71 , wherein the 
computer code is further configured to: 

edit the Internet access request to remove the URL and to 
include a user appropriate URL, if access is not granted; and 

send the edited Internet access request to the client computer 
networking layer, if access is not granted. 

73. The computer program product of claim 72, wherein the 
computer code is further configured to: 

store the URL in a cache at the client computer; 

store the URL in the cache as disallowed, if access is not 

granted; 

store the URL in the cache as allowed, if access is granted; 

intercept an additional Internet access request initiated by an 
application used at the client computer by the user; 

extract an additional URL from the additional Internet access 
request at the client computer; 

compare the additional URL to each URL in the cache until the 
additional URL matches a URL stored in the cache or until the additional URL 
has been compared to each URL in the cache; 
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send the Internet access request to the client computer 
networking layer, if the additional URL matches a URL stored in the cache as 
allowed; 

edit the additional Internet access request to remove the 
additional URL and to include the user appropriate URL, if the additional URL 
matches a URL stored in the cache as disallowed; 

send the edited additional Internet access request to the client 
computer networking layer, if the additional URL matches a URL stored in the 
cache as disallowed; and 

clear the cache when the user logs out from the computer 
program product. 

74. The computer program product of claim 70, wherein the 
computer code is further configured to: 

receive a user web access override list from the Internet access 
control web server at the client computer, wherein the user web access 
override list comprises URLs to which the user is allowed access and URLs to 
which the user is not allowed access; 

compare the URL to the user web access override list at the 
client computer; 

determine if access to the URL should be granted at the client 

computer; 

send the Internet access request to a client computer 
networking layer, if access is granted; 

edit the Internet access request to remove the URL and to 
include a user appropriate URL, if access is not granted; and 

send the edited Internet access request to the client computer 
networking layer, if access is not granted. 

75. The computer program product of claim 74, wherein the 
computer code is further configured to: 
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3 store the URL in a cache at the client computer; 

4 store the URL in the cache as disallowed, if access is not 

5 granted; 

6 store the URL in the cache as allowed, if access is granted; 

7 intercept an additional Internet access request initiated by an 

8 application used at the client computer by the user; 

9 extract an additional URL from the additional Internet access 

10 request at the client computer; 

11 compare the additional URL to each URL in the cache until the 

12 additional URL matches a URL stored in the cache or until the additional URL 

13 has been compared to each URL in the cache; 

14 send the Internet access request to the client computer 

15 networking layer, if the additional URL matches a URL stored in the cache as 

16 allowed; 

17 edit the additional Internet access request to remove the 

18 additional URL and to include the user appropriate URL, if the additional URL 

19 matches a URL stored in the cache as disallowed; 

20 send the edited additional Internet access request to the client 

21 computer networking layer, if the additional URL matches a URL stored in the 

22 cache as disallowed; and 

23 clear the cache when the user logs out from the computer 

24 program product. 

1 76. The computer program product of claim 70, wherein the user 

2 web access settings and the URL ratings further comprise context settings for 

3 at least one category of content. 

1 77. The computer program product of claim 76, wherein the context 

2 settings comprise a setting that the URL contains material of artistic value. 
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78. The computer program product of claim 76, wherein the context 
settings comprise a setting that the URL contains material of educational 
value. 

79. The computer program product of claim 76, wherein the context 
settings comprise a setting that the URL contains material of medical value. 

80. The computer program product of claim 76, wherein the 
category of content comprises a language category. 

81 . The computer program product of claim 80, wherein the 
language category of content comprises a plurality of selectable language 
content levels and a selectable context setting to optionally override the 
selected language content level. 

82. The computer program product of claim 76, wherein the 
category of content comprises a nudity and sex category. 

83. The computer program product of claim 82, wherein the nudity 
and sex category of content comprises a plurality of selectable nudity and sex 
content levels and a selectable context setting to optionally override the 
selected nudity and sex content level. 

84. The computer program product of claim 76, wherein the 
category of content comprises a violence category. 

85. The computer program product of claim 84, wherein the violence 
category of content comprises a plurality of selectable violence content levels 
and a selectable context setting to optionally override the selected violence 
content level. 

86. The computer program product of claim 84, wherein the violence 
category comprises a human being violence category. 
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87. The computer program product of claim 84, wherein the violence 
category comprises an animal violence category. 

88. The computer program product of claim 84, wherein the violence 
category comprises a fantasy character violence category. 

89. The computer program product of claim 70, wherein the user 
web access settings and the URL ratings further comprise at least one 
restrictive category of content that may be either allowed or disallowed. 

90. The computer program product of claim 89, wherein the at least 
one restrictive category of content is auctions, drug advocacy, entertainment, 
illegal activities, gambling, games, Gay and Lesbian information, 
discriminatory speech, information concerning higher education, intimate 
apparel, information concerning mysticism, news, personal advertisements, 
personal websites, politics, religion, sex education, shopping, sports, 
information concerning suicide, weapon promotion, material that may disturb 
young children, material that may set a bad example for young children, adult 
sexual material, job search/careers, travel/tourism and vacation, motor 
vehicles, or stocks and investing. 
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